Secure Development LifeCycles (SDLC) - Bart De Win
Bart De Win lecturing at SecAppDev Leuven 2013.
Learning objectives
+ learn the different elements of SDLC models,
+ understand the challenges to put this into practice,
+ identify opportunities to improve your company's practices.
Overview
It takes much more than a good developer to build secure software within an organisation. Indeed, building secure software is about ensuring that security is taken into consideration during the entire software lifecycle. It is about ensuring that security best practices are being employed efficiently, and that uncovered risks are appropriately dealt with in due time.
This session consists of two parts. In a first part, an overview of state-of-the-art SDLC models is presented in order to discuss the fundamentals and cornerstones of these models. This will help participants grasp the scope and different concepts of these models, but also understand the differences between them. In a second part, we will focus on the practical challenges in implementing these concepts in an organisation. During this part, participants are invited to discuss the challenges that they see in their organisation.
Bart De Win has over 15 years of experience in software security. He has an extensive background in the field, including his Ph.D. and research work on methods and techniques for software protection. Since 2009, Bart has been responsible for all application security services within Ascure & PwC Belgium. He has extensive project experience in software testing and in assisting companies improving their secure software development practices.
Bart is member of the OWASP Belgium Chapter board and he is a co-leader of the OpenSAMM Software Assurance Model. Bart is SABSA, Prince 2 and CSSLP certified.
Видео Secure Development LifeCycles (SDLC) - Bart De Win канала secappdev.org
Learning objectives
+ learn the different elements of SDLC models,
+ understand the challenges to put this into practice,
+ identify opportunities to improve your company's practices.
Overview
It takes much more than a good developer to build secure software within an organisation. Indeed, building secure software is about ensuring that security is taken into consideration during the entire software lifecycle. It is about ensuring that security best practices are being employed efficiently, and that uncovered risks are appropriately dealt with in due time.
This session consists of two parts. In a first part, an overview of state-of-the-art SDLC models is presented in order to discuss the fundamentals and cornerstones of these models. This will help participants grasp the scope and different concepts of these models, but also understand the differences between them. In a second part, we will focus on the practical challenges in implementing these concepts in an organisation. During this part, participants are invited to discuss the challenges that they see in their organisation.
Bart De Win has over 15 years of experience in software security. He has an extensive background in the field, including his Ph.D. and research work on methods and techniques for software protection. Since 2009, Bart has been responsible for all application security services within Ascure & PwC Belgium. He has extensive project experience in software testing and in assisting companies improving their secure software development practices.
Bart is member of the OWASP Belgium Chapter board and he is a co-leader of the OpenSAMM Software Assurance Model. Bart is SABSA, Prince 2 and CSSLP certified.
Видео Secure Development LifeCycles (SDLC) - Bart De Win канала secappdev.org
Показать
Комментарии отсутствуют
Информация о видео
Другие видео канала
Secure Development Lifecycles (SDLC): Introduction and Process Models - Bart De WinBuilding Secure Angular Application - Philippe De RyckSecure SDLC (CISSP Free by Skillset.com)A Day in the Life of a CSSLP – Rob BarnesBetween Testing and Formal Verification - Jan Tobias MuehlbergThe OWASP Top Ten Proactive Controls - Jim ManicoOWASP SAMM and other Software Security Assurance Frameworks - August JohnsonThe Web's Security Model in 2017 - Philippe De RyckSimple Guide to Secure SDLC - Audrey NahrvarSoftware Development Life Cycle (SDLC)- simplifieddotSecurity 2017 - Jim Manico - Secure Software Development LifecycleInformation Security Policies - DevelopmentWaterfall Model SDLC | Online Software Testing CourseAn Entire Software Development Life Cycle - Full Guide (Tutorial)Traditional vs Cloud Native ApplicationsPreventing Cyber-attacks by following Practical Guidance in IEC 62443The Future of African Software Development - AndelaBest Entry Level Cyber Security CertificationsSoftware Development Lifecycle in 9 minutes!What is Application Lifecycle Management (ALM)?